New PHP Composer Vulnerability Let Attackers Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

PHP Composer released urgent security updates to address two critical command injection vulnerabilities. PHP Composer is an essential dependency management tool used globally by developers, making any code execution flaws highly concerning. These specific bugs reside in the Perforce Version Control …

MuddyWater-Style Hackers Scan 12,000+ Systems Before Hitting Middle East Critical Sectors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber campaign bearing strong operational similarities to the MuddyWater threat group has been caught sweeping more than 12,000 internet-exposed systems across multiple regions before launching focused attacks on high-value targets in the Middle East. The operation targeted critical …

Hackers Using Google Cloud Storage to Bypass Email Filters and Deliver Remcos RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are always looking for smarter ways to bypass security, and their latest method is both simple and effective. Instead of building suspicious new websites, attackers now use Google Cloud Storage — a widely trusted platform — to host phishing …

Hackers Hide Backdoor in Trusted WordPress Plugins for 8 Months Before Activating Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A group of trusted WordPress plugins quietly carried a hidden backdoor for eight full months, and nobody noticed until the damage had already been done. The attack, uncovered in April 2026, did not begin with a dramatic breach. It started …

Hackers Create Hidden Mailbox Rules in Microsoft 365 to Intercept Sensitive Business Emails

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have found a quiet way to sit inside a corporate email account and read everything being sent and received — without the account owner ever knowing. Attackers are now abusing a built-in Microsoft 365 feature called mailbox rules to …

Agentic LLM Browsers Expose New Attack Surface for Prompt Injection and Data Theft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Artificial intelligence is changing how people browse the internet. AI-powered browsers no longer just show web pages — they read content, take actions, and complete tasks for the user. These tools, called agentic LLM browsers, let users give simple commands …

FUNNULL-Linked Triad Nexus Resurfaces With 175+ Rotating CNAME Domains and Global Scam Portals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A cybercriminal group tied to the FUNNULL Content Delivery Network has made a calculated return with a far more sophisticated and evasive infrastructure. Known as Triad Nexus, the group has rebuilt its global fraud operation following U.S. Treasury sanctions, deploying …

Windows BitLocker Vulnerability Allows Attacker to Bypass Security Feature

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft officially released security updates to address a significant vulnerability in Windows BitLocker. Tracked as CVE-2026-27913, this security feature bypass vulnerability was discovered by security researcher Alon Leviev in collaboration with the Microsoft STORM team. The flaw poses a substantial …

New JanaWare Ransomware Targets Turkish Users Through Customized Adwind RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware family called JanaWare has begun targeting computer users in Turkey, relying on a customized version of the Adwind remote access trojan (RAT) to gain a foothold on victims’ systems. This campaign stands out because it combines a …

25,000+ Endpoints Exposed by Dragon Boss Solutions Update Domain Supply Chain Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

What started as a routine adware alert quickly turned into something far more serious. On the morning of March 22, 2026, security alerts began firing across multiple managed environments, all linked to software signed by a company called Dragon Boss …